Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability

    Chinese Hackers Have Started Exploiting the Newly Disclosed React2Shell Vulnerability

    Dec 05, 2025Ravie LakshmananVulnerability / Software Security Two hacking groups with ties to China have been observed weaponizing the newly disclosed security flaw in React Server Components (RSC) within hours of it becoming public knowledge. The vulnerability in question is CVE-2025-55182 (CVSS score: 10.0), aka React2Shell, which allows unauthenticated remote code execution. It has been…

    Read More
    CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems

      CISA Reports PRC Hackers Using BRICKSTORM for Long-Term Access in U.S. Systems

      The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday released details of a backdoor named BRICKSTORM that has been put to use by state-sponsored threat actors from the People’s Republic of China (PRC) to maintain long-term persistence on compromised systems. “BRICKSTORM is a sophisticated backdoor for VMware vSphere and Windows environments,” the agency said….

      Read More
      AT&T customers could get up to $7,500 in a $177 million settlement. Here's how to file a claim.

      AT&T customers could get up to $7,500 in a $177 million settlement. Here’s how to file a claim.

      Millions of AT&T customers can now file claims in a $177 million legal settlement related to two data breaches, which could provide up to $7,500 in compensation per person. The first data breach, announced in March 2024, affected 73 million current and former AT&T account holders whose information — including birth dates and Social Security numbers —…

      Read More
      DHS and HHS among federal agencies hacked in Microsoft SharePoint breach

      DHS and HHS among federal agencies hacked in Microsoft SharePoint breach

      Washington — Department of Homeland Security headquarters, several of its component agencies and the Department of Health and Human Services have been hacked as part of a wider breach of Microsoft’s SharePoint service, according to multiple U.S. officials.  Microsoft confirmed its software was targeted by Chinese actors who deployed ransomware on the file sharing and…

      Read More